Format: 1.8 Date: Thu, 20 Dec 2018 19:04:33 +0000 Source: graphicsmagick Binary: graphicsmagick libgraphicsmagick-q16-3 libgraphicsmagick1-dev libgraphicsmagick++-q16-12 libgraphicsmagick++1-dev libgraphics-magick-perl graphicsmagick-imagemagick-compat graphicsmagick-libmagick-dev-compat graphicsmagick-dbg Architecture: arm64 Version: 1.4~hg15873-1 Distribution: disco-proposed Urgency: high Maintainer: Launchpad Build Daemon Changed-By: Laszlo Boszormenyi (GCS) Description: graphicsmagick - collection of image processing tools graphicsmagick-dbg - format-independent image processing - debugging symbols graphicsmagick-imagemagick-compat - image processing tools providing ImageMagick interface graphicsmagick-libmagick-dev-compat - image processing libraries providing ImageMagick interface libgraphics-magick-perl - format-independent image processing - perl interface libgraphicsmagick++-q16-12 - format-independent image processing - C++ shared library libgraphicsmagick++1-dev - format-independent image processing - C++ development files libgraphicsmagick-q16-3 - format-independent image processing - C shared library libgraphicsmagick1-dev - format-independent image processing - C development files Closes: 916719 916721 916752 Changes: graphicsmagick (1.4~hg15873-1) unstable; urgency=high . * Mercurial snapshot, fixing the following security issues: - WriteImage(): Eliminate use of just-freed memory in clone_info->magick, - ReadMIFFImage(): Fix memory leak of profiles 'name' when claimed length is zero, - WriteXPMImage(): Assure that added colormap entry for transparent XPM is initialized, - ReadMNGImage(): Fix non-terminal MNG looping, - ReadMIFFImage(): Sanitize claimed profile size before allocating memory for it, - CVE-2018-20185: ReadBMPImage(): Fix heap overflow in 32-bit build due to arithmetic overflow (closes: #916719), - CVE-2018-20184: WriteTGAImage(): Image rows/columns must not be larger than 65535 (closes: #916721), - ReadTIFFImage(): More validations and stricter error reporting, - ReadMIFFImage(): Detect and reject zero-length deflate-encoded row in MIFF version 0, - CVE-2018-20189: ReadDIBImage(): DIB images claiming more than 8-bits per pixel are not colormapped (closes: #916752). * Add pkg-config to build dependency for FreeType 2.9.1+ detection. * Update library symbols for this release. Checksums-Sha1: 842764db9f4b2fcfd39180450da4c920561ebdd8 3977232 graphicsmagick-dbg_1.4~hg15873-1_arm64.deb c405596027bbe9058a1badf0c3b880da9147061f 9573 graphicsmagick_1.4~hg15873-1_arm64.buildinfo f8bdd97b40a6586d4a850e72d012ef796ad7dc6b 649624 graphicsmagick_1.4~hg15873-1_arm64.deb 7dd6eb2490b518bcd8c98149a3edbe8199c04e3c 48392 libgraphics-magick-perl_1.4~hg15873-1_arm64.deb 5c60e47e8894ae1132b91e8039cc274a61ef1614 93756 libgraphicsmagick++-q16-12_1.4~hg15873-1_arm64.deb d830e2872694cad342ca26818cf3ab4430c9aa32 268664 libgraphicsmagick++1-dev_1.4~hg15873-1_arm64.deb e53571a150441c6711fd8246fbc3c44b8cdb9d4d 1011952 libgraphicsmagick-q16-3_1.4~hg15873-1_arm64.deb 9a5dd49231455cff5a5d463d5fccdf456f2e6546 1309208 libgraphicsmagick1-dev_1.4~hg15873-1_arm64.deb Checksums-Sha256: f2aa634284927823c84ea8b1c1bbb9392a92f491e54a163cf1f1308bab541099 3977232 graphicsmagick-dbg_1.4~hg15873-1_arm64.deb dfa63d221cdd2033557a31d001adeb1e2bce2b295be0ce82abe99c7a7d0f8e6a 9573 graphicsmagick_1.4~hg15873-1_arm64.buildinfo a557466de64a083933340a9ce48faa4de4086468dcd90936ec34f88be0ad71c5 649624 graphicsmagick_1.4~hg15873-1_arm64.deb 899c42b872b62f15527fb8bfe3132721b46e0223e6017c342371dea21c41533f 48392 libgraphics-magick-perl_1.4~hg15873-1_arm64.deb fc8c43278f0af6a437b9e37a3a855f66ecea424f3575039e21423aa185f4f376 93756 libgraphicsmagick++-q16-12_1.4~hg15873-1_arm64.deb e158c14744a394ca618524b2121916a02e72a016ac9aa0a8b1f5b43215b37a78 268664 libgraphicsmagick++1-dev_1.4~hg15873-1_arm64.deb 7ab66d1091d484293ade122cea119bfd39e42aaf7511533b6ebbf85e94ec97af 1011952 libgraphicsmagick-q16-3_1.4~hg15873-1_arm64.deb 621b0a72a1e266c9364077e9617261441298aa9ab1d3cce4503bf0b5a1fa8ba7 1309208 libgraphicsmagick1-dev_1.4~hg15873-1_arm64.deb Files: 03c21506f4c351216495b672e149ff95 3977232 debug optional graphicsmagick-dbg_1.4~hg15873-1_arm64.deb 154cb7d0daefe20d411fdc9efb796c41 9573 graphics optional graphicsmagick_1.4~hg15873-1_arm64.buildinfo f1c32673cddfeb99812d9874f85090cf 649624 graphics optional graphicsmagick_1.4~hg15873-1_arm64.deb 03c0c2ed5c355ccb4f3c19071ffbafff 48392 perl optional libgraphics-magick-perl_1.4~hg15873-1_arm64.deb db9212dfe86cd63ecb363b049d49b66d 93756 libs optional libgraphicsmagick++-q16-12_1.4~hg15873-1_arm64.deb 741f09d5ed591f058707048c94a82240 268664 libdevel optional libgraphicsmagick++1-dev_1.4~hg15873-1_arm64.deb 16c63f32d47691adb08de084a41ca721 1011952 libs optional libgraphicsmagick-q16-3_1.4~hg15873-1_arm64.deb 0e4e0d175830803cc4563da739f3f7d1 1309208 libdevel optional libgraphicsmagick1-dev_1.4~hg15873-1_arm64.deb